CVE-2020-21493: Xiuno Xiunobbs

Medium severity, CVSS 5.3. EPSS: 1% chance of exploitation in the next 30 days.

An issue in the component route\user.php of Xiuno BBS v4.0.4 allows attackers to enumerate usernames.

Affected products

  • Xiuno Xiunobbs: version 4.0.4 only

Published 2021-10-04. Last modified 2026-06-17.